[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2009-2654":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T02:55:30.529Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":531,"aliases":560,"duplicate_of":9,"upstream":561,"downstream":562,"duplicates":575,"related":576,"reserved_at":9,"published_at":579,"modified_at":580,"state":581,"summary":582,"references_raw":589,"kevs":714,"epss":715,"epss_history":718,"metrics":959,"affected":964},"CVE-2009-2654","Mozilla Firefox before 3.0.13, and 3.5.x before 3.5.2, allows remote attackers to spoof the address bar, and possibly conduct phishing attacks, via a crafted web page that calls window.open with an invalid character in the URL, makes document.write calls to the resulting object, and then calls the stop method during the loading of the error page.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-20","Improper Input Validation","The product receives input or data, but it does\n        not validate or incorrectly validates that the input has the\n        properties that are required to process the data safely and\n        correctly.","weakness","Stable","Class","High",[20,24,28,32,36,40,44,48,232,236,240,244,248,252,256,260,264,268,272,276,280,284,325,329,333,381,385,389,393,397,401,451,455,459,463,467,471,475,479,483,487,491,495,499,503,507,511,515,519,523,527],{"id":21,"name":22,"techniques":23},"CAPEC-10","Buffer Overflow via Environment Variables",[],{"id":25,"name":26,"techniques":27},"CAPEC-101","Server Side Include (SSI) Injection",[],{"id":29,"name":30,"techniques":31},"CAPEC-104","Cross Zone Scripting",[],{"id":33,"name":34,"techniques":35},"CAPEC-108","Command Line Execution through SQL Injection",[],{"id":37,"name":38,"techniques":39},"CAPEC-109","Object Relational Mapping Injection",[],{"id":41,"name":42,"techniques":43},"CAPEC-110","SQL Injection through SOAP Parameter Tampering",[],{"id":45,"name":46,"techniques":47},"CAPEC-120","Double Encoding",[],{"id":49,"name":50,"techniques":51},"CAPEC-13","Subverting Environment Variable Values",[52,150,192],{"id":53,"name":54,"tactics":55,"countermeasures":62},"T1562.003","Impair Command History Logging",[56,59],{"id":57,"name":58},"TA0030","Defense Evasion",{"id":60,"name":61},"TA0005","Stealth",[63,68,73,77,81,85,90,94,99,104,108,112,117,121,126,130,134,138,142,146],{"id":64,"name":65,"tactic":66},"D3-CI","Configuration Inventory",{"name":67},"Model",{"id":69,"name":70,"tactic":71},"D3-FA","File Analysis",{"name":72},"Detect",{"id":74,"name":75,"tactic":76},"D3-FIM","File Integrity Monitoring",{"name":72},{"id":78,"name":79,"tactic":80},"D3-DA","Dynamic Analysis",{"name":72},{"id":82,"name":83,"tactic":84},"D3-EFA","Emulated File Analysis",{"name":72},{"id":86,"name":87,"tactic":88},"D3-FEV","File Eviction",{"name":89},"Evict",{"id":91,"name":92,"tactic":93},"D3-RKD","Registry Key Deletion",{"name":89},{"id":95,"name":96,"tactic":97},"D3-DF","Decoy File",{"name":98},"Deceive",{"id":100,"name":101,"tactic":102},"D3-DRA","Disable Remote Access",{"name":103},"Harden",{"id":105,"name":106,"tactic":107},"D3-ACH","Application Configuration Hardening",{"name":103},{"id":109,"name":110,"tactic":111},"D3-FE","File Encryption",{"name":103},{"id":113,"name":114,"tactic":115},"D3-RC","Restore Configuration",{"name":116},"Restore",{"id":118,"name":119,"tactic":120},"D3-RF","Restore File",{"name":116},{"id":122,"name":123,"tactic":124},"D3-CQ","Content Quarantine",{"name":125},"Isolate",{"id":127,"name":128,"tactic":129},"D3-CF","Content Filtering",{"name":125},{"id":131,"name":132,"tactic":133},"D3-LFP","Local File Permissions",{"name":125},{"id":135,"name":136,"tactic":137},"D3-RFAM","Remote File Access Mediation",{"name":125},{"id":139,"name":140,"tactic":141},"D3-CM","Content Modification",{"name":125},{"id":143,"name":144,"tactic":145},"D3-EAL","Executable Allowlisting",{"name":125},{"id":147,"name":148,"tactic":149},"D3-EDL","Executable Denylisting",{"name":125},{"id":151,"name":152,"tactics":153,"countermeasures":165},"T1574.006","Dynamic Linker Hijacking",[154,157,160,161,162],{"id":155,"name":156},"TA0110","Persistence",{"id":158,"name":159},"TA0111","Privilege Escalation",{"id":57,"name":58},{"id":60,"name":61},{"id":163,"name":164},"TA0104","Execution",[166,170,172,174,176,178,180,182,184,186,188,190],{"id":167,"name":168,"tactic":169},"D3-SFA","System File Analysis",{"name":72},{"id":69,"name":70,"tactic":171},{"name":72},{"id":74,"name":75,"tactic":173},{"name":72},{"id":86,"name":87,"tactic":175},{"name":89},{"id":95,"name":96,"tactic":177},{"name":98},{"id":109,"name":110,"tactic":179},{"name":103},{"id":118,"name":119,"tactic":181},{"name":116},{"id":127,"name":128,"tactic":183},{"name":125},{"id":131,"name":132,"tactic":185},{"name":125},{"id":135,"name":136,"tactic":187},{"name":125},{"id":122,"name":123,"tactic":189},{"name":125},{"id":139,"name":140,"tactic":191},{"name":125},{"id":193,"name":194,"tactics":195,"countermeasures":201},"T1574.007","Path Interception by PATH Environment Variable",[196,197,198,199,200],{"id":155,"name":156},{"id":158,"name":159},{"id":57,"name":58},{"id":60,"name":61},{"id":163,"name":164},[202,204,206,208,210,212,214,216,218,220,222,224,226,228,230],{"id":69,"name":70,"tactic":203},{"name":72},{"id":74,"name":75,"tactic":205},{"name":72},{"id":78,"name":79,"tactic":207},{"name":72},{"id":82,"name":83,"tactic":209},{"name":72},{"id":86,"name":87,"tactic":211},{"name":89},{"id":95,"name":96,"tactic":213},{"name":98},{"id":109,"name":110,"tactic":215},{"name":103},{"id":118,"name":119,"tactic":217},{"name":116},{"id":127,"name":128,"tactic":219},{"name":125},{"id":131,"name":132,"tactic":221},{"name":125},{"id":135,"name":136,"tactic":223},{"name":125},{"id":122,"name":123,"tactic":225},{"name":125},{"id":139,"name":140,"tactic":227},{"name":125},{"id":143,"name":144,"tactic":229},{"name":125},{"id":147,"name":148,"tactic":231},{"name":125},{"id":233,"name":234,"techniques":235},"CAPEC-135","Format String Injection",[],{"id":237,"name":238,"techniques":239},"CAPEC-136","LDAP Injection",[],{"id":241,"name":242,"techniques":243},"CAPEC-14","Client-side Injection-induced Buffer Overflow",[],{"id":245,"name":246,"techniques":247},"CAPEC-153","Input Data Manipulation",[],{"id":249,"name":250,"techniques":251},"CAPEC-182","Flash Injection",[],{"id":253,"name":254,"techniques":255},"CAPEC-209","XSS Using MIME Type Mismatch",[],{"id":257,"name":258,"techniques":259},"CAPEC-22","Exploiting Trust in Client",[],{"id":261,"name":262,"techniques":263},"CAPEC-23","File Content Injection",[],{"id":265,"name":266,"techniques":267},"CAPEC-230","Serialized Data with Nested Payloads",[],{"id":269,"name":270,"techniques":271},"CAPEC-231","Oversized Serialized Data Payloads",[],{"id":273,"name":274,"techniques":275},"CAPEC-24","Filter Failure through Buffer Overflow",[],{"id":277,"name":278,"techniques":279},"CAPEC-250","XML Injection",[],{"id":281,"name":282,"techniques":283},"CAPEC-261","Fuzzing for garnering other adjacent user/sensitive data",[],{"id":285,"name":286,"techniques":287},"CAPEC-267","Leverage Alternate Encoding",[288],{"id":289,"name":290,"tactics":291,"countermeasures":294},"T1027","Obfuscated Files or Information",[292,293],{"id":57,"name":58},{"id":60,"name":61},[295,297,299,301,303,305,307,309,311,313,315,317,319,321,323],{"id":69,"name":70,"tactic":296},{"name":72},{"id":74,"name":75,"tactic":298},{"name":72},{"id":78,"name":79,"tactic":300},{"name":72},{"id":82,"name":83,"tactic":302},{"name":72},{"id":86,"name":87,"tactic":304},{"name":89},{"id":95,"name":96,"tactic":306},{"name":98},{"id":109,"name":110,"tactic":308},{"name":103},{"id":118,"name":119,"tactic":310},{"name":116},{"id":127,"name":128,"tactic":312},{"name":125},{"id":131,"name":132,"tactic":314},{"name":125},{"id":135,"name":136,"tactic":316},{"name":125},{"id":122,"name":123,"tactic":318},{"name":125},{"id":139,"name":140,"tactic":320},{"name":125},{"id":143,"name":144,"tactic":322},{"name":125},{"id":147,"name":148,"tactic":324},{"name":125},{"id":326,"name":327,"techniques":328},"CAPEC-28","Fuzzing",[],{"id":330,"name":331,"techniques":332},"CAPEC-3","Using Leading 'Ghost' Character Sequences to Bypass Input Filters",[],{"id":334,"name":335,"techniques":336},"CAPEC-31","Accessing/Intercepting/Modifying HTTP Cookies",[337],{"id":338,"name":339,"tactics":340,"countermeasures":344},"T1539","Steal Web Session Cookie",[341],{"id":342,"name":343},"TA0031","Credential Access",[345,349,353,357,361,365,369,373,377],{"id":346,"name":347,"tactic":348},"D3-CCSA","Credential Compromise Scope Analysis",{"name":72},{"id":350,"name":351,"tactic":352},"D3-CR","Credential Revocation",{"name":89},{"id":354,"name":355,"tactic":356},"D3-ANCI","Authentication Cache Invalidation",{"name":89},{"id":358,"name":359,"tactic":360},"D3-DUC","Decoy User Credential",{"name":98},{"id":362,"name":363,"tactic":364},"D3-CH","Credential Hardening",{"name":103},{"id":366,"name":367,"tactic":368},"D3-MFA","Multi-factor Authentication",{"name":103},{"id":370,"name":371,"tactic":372},"D3-CRO","Credential Rotation",{"name":103},{"id":374,"name":375,"tactic":376},"D3-RIC","Reissue Credential",{"name":116},{"id":378,"name":379,"tactic":380},"D3-CTS","Credential Transmission Scoping",{"name":125},{"id":382,"name":383,"techniques":384},"CAPEC-42","MIME Conversion",[],{"id":386,"name":387,"techniques":388},"CAPEC-43","Exploiting Multiple Input Interpretation Layers",[],{"id":390,"name":391,"techniques":392},"CAPEC-45","Buffer Overflow via Symbolic Links",[],{"id":394,"name":395,"techniques":396},"CAPEC-46","Overflow Variables and Tags",[],{"id":398,"name":399,"techniques":400},"CAPEC-47","Buffer Overflow via Parameter Expansion",[],{"id":402,"name":403,"techniques":404},"CAPEC-473","Signature Spoof",[405,442],{"id":406,"name":407,"tactics":408,"countermeasures":411},"T1036.001","Invalid Code Signature",[409,410],{"id":57,"name":58},{"id":60,"name":61},[412,414,416,418,420,422,424,426,428,430,432,434,436,438,440],{"id":69,"name":70,"tactic":413},{"name":72},{"id":74,"name":75,"tactic":415},{"name":72},{"id":78,"name":79,"tactic":417},{"name":72},{"id":82,"name":83,"tactic":419},{"name":72},{"id":86,"name":87,"tactic":421},{"name":89},{"id":95,"name":96,"tactic":423},{"name":98},{"id":109,"name":110,"tactic":425},{"name":103},{"id":118,"name":119,"tactic":427},{"name":116},{"id":127,"name":128,"tactic":429},{"name":125},{"id":131,"name":132,"tactic":431},{"name":125},{"id":135,"name":136,"tactic":433},{"name":125},{"id":122,"name":123,"tactic":435},{"name":125},{"id":139,"name":140,"tactic":437},{"name":125},{"id":143,"name":144,"tactic":439},{"name":125},{"id":147,"name":148,"tactic":441},{"name":125},{"id":443,"name":444,"tactics":445,"countermeasures":450},"T1553.002","Code Signing",[446,447],{"id":57,"name":58},{"id":448,"name":449},"TA0112","Defense Impairment",[],{"id":452,"name":453,"techniques":454},"CAPEC-52","Embedding NULL Bytes",[],{"id":456,"name":457,"techniques":458},"CAPEC-53","Postfix, Null Terminate, and Backslash",[],{"id":460,"name":461,"techniques":462},"CAPEC-588","DOM-Based XSS",[],{"id":464,"name":465,"techniques":466},"CAPEC-63","Cross-Site Scripting (XSS)",[],{"id":468,"name":469,"techniques":470},"CAPEC-64","Using Slashes and URL Encoding Combined to Bypass Validation Logic",[],{"id":472,"name":473,"techniques":474},"CAPEC-664","Server Side Request Forgery",[],{"id":476,"name":477,"techniques":478},"CAPEC-67","String Format Overflow in syslog()",[],{"id":480,"name":481,"techniques":482},"CAPEC-7","Blind SQL Injection",[],{"id":484,"name":485,"techniques":486},"CAPEC-71","Using Unicode Encoding to Bypass Validation Logic",[],{"id":488,"name":489,"techniques":490},"CAPEC-72","URL Encoding",[],{"id":492,"name":493,"techniques":494},"CAPEC-73","User-Controlled Filename",[],{"id":496,"name":497,"techniques":498},"CAPEC-78","Using Escaped Slashes in Alternate Encoding",[],{"id":500,"name":501,"techniques":502},"CAPEC-79","Using Slashes in Alternate Encoding",[],{"id":504,"name":505,"techniques":506},"CAPEC-8","Buffer Overflow in an API Call",[],{"id":508,"name":509,"techniques":510},"CAPEC-80","Using UTF-8 Encoding to Bypass Validation Logic",[],{"id":512,"name":513,"techniques":514},"CAPEC-81","Web Server Logs Tampering",[],{"id":516,"name":517,"techniques":518},"CAPEC-83","XPath Injection",[],{"id":520,"name":521,"techniques":522},"CAPEC-85","AJAX Footprinting",[],{"id":524,"name":525,"techniques":526},"CAPEC-88","OS Command Injection",[],{"id":528,"name":529,"techniques":530},"CAPEC-9","Buffer Overflow in Local Command-Line Utilities",[],[532,541,545],{"_key":533,"name":534,"source":535,"url":536,"maturity":537,"reliability_score":538,"verified":539,"type":9,"platforms":540,"requires_auth":9,"exploitdb":9,"metasploit":9},"REF_12C6F2E74E21BB5B","Exploit Reference (securityfocus.com)","reference","http://www.securityfocus.com/bid/35803","unknown",0.2,false,[],{"_key":542,"name":534,"source":535,"url":543,"maturity":537,"reliability_score":538,"verified":539,"type":9,"platforms":544,"requires_auth":9,"exploitdb":9,"metasploit":9},"REF_7EEEF579F75ACB92","http://www.securityfocus.com/archive/1/505242/30/0/threaded",[],{"_key":546,"name":547,"source":548,"url":549,"maturity":550,"reliability_score":551,"verified":552,"type":553,"platforms":554,"requires_auth":9,"exploitdb":556,"metasploit":9},"33103","Mozilla Firefox 3.5.1 - Error Page Address Bar URI Spoofing","exploit-database","https://www.exploit-db.com/exploits/33103","weaponized",0.8,true,"remote",[555],"linux",{"verified":552,"type":553,"platform":555,"file":557,"codes":558},"exploits/linux/remote/33103.html",[7,559],"OSVDB-56717",[],[],[563,565,567,569,571,573],{"_key":564},"RHSA-2009:1430",{"_key":566},"RHSA-2009:1431",{"_key":568},"RHSA-2009:1432",{"_key":570},"OPENSUSE-SU-2024:10071-1",{"_key":572},"OPENSUSE-SU-2024:14572-1",{"_key":574},"DSA-1873-1",[],[577,578],{"_key":570},{"_key":572},"2009-08-03T14:00:00.000Z","2024-08-07T05:59:56.565Z","Modified",{"cisa_kev":539,"cisa_ransomware":539,"cisa_vendor":9,"epss_severity":583,"epss_score":584,"severity":583,"severity_score":585,"severity_version":586,"severity_source":587,"severity_vector":588,"severity_status":581},"medium",0.13196,5.8,"v2.0","nvd","AV:N/AC:M/Au:N/C:N/I:P/A:P",[590,599,605,609,615,620,625,630,634,638,643,648,652,656,662,667,671,675,679,683,686,691,696,701,706,710],{"url":591,"sources":592,"tags":594},"http://www.vupen.com/english/advisories/2009/2142",[593,587],"cve.org",[595,596,597,598],"VDB Entry","X Refsource VUPEN","Patch","Vendor Advisory",{"url":600,"sources":601,"tags":602},"http://secunia.com/advisories/36141",[593,587],[603,604,598],"Third Party Advisory","X Refsource SECUNIA",{"url":606,"sources":607,"tags":608},"http://www.vupen.com/english/advisories/2009/2006",[593,587],[595,596,597,598],{"url":610,"sources":611,"tags":612},"http://www.securityfocus.com/archive/1/505265",[593,587],[613,614],"Mailing List","X Refsource BUGTRAQ",{"url":616,"sources":617,"tags":618},"http://www.redhat.com/support/errata/RHSA-2009-1430.html",[593,587],[598,619],"X Refsource REDHAT",{"url":621,"sources":622,"tags":623},"http://blog.mozilla.com/security/2009/07/28/url-bar-spoofing-vulnerability/",[593,587],[624,597,598],"X Refsource CONFIRM",{"url":626,"sources":627,"tags":628},"http://sunsolve.sun.com/search/document.do?assetkey=1-66-266148-1",[593,587],[598,629],"X Refsource SUNALERT",{"url":631,"sources":632,"tags":633},"https://bugzilla.mozilla.org/show_bug.cgi?id=451898",[593,587],[624],{"url":635,"sources":636,"tags":637},"http://secunia.com/advisories/36001",[593,587],[603,604,598],{"url":639,"sources":640,"tags":641},"https://usn.ubuntu.com/811-1/",[593,587],[598,642],"X Refsource UBUNTU",{"url":536,"sources":644,"tags":645},[593,587],[595,646,647,597],"X Refsource BID","Exploit",{"url":649,"sources":650,"tags":651},"http://secunia.com/advisories/36670",[593,587],[603,604],{"url":653,"sources":654,"tags":655},"http://secunia.com/advisories/36669",[593,587],[603,604],{"url":657,"sources":658,"tags":659},"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9686",[593,587],[595,660,661],"Signature","X Refsource OVAL",{"url":663,"sources":664,"tags":665},"https://www.redhat.com/archives/fedora-package-announce/2009-August/msg00261.html",[593,587],[598,666],"X Refsource FEDORA",{"url":668,"sources":669,"tags":670},"http://secunia.com/advisories/36126",[593,587],[603,604,598],{"url":672,"sources":673,"tags":674},"http://www.redhat.com/support/errata/RHSA-2009-1432.html",[593,587],[598,619],{"url":676,"sources":677,"tags":678},"http://www.mozilla.org/security/announce/2009/mfsa2009-44.html",[593,587],[624,597,598],{"url":680,"sources":681,"tags":682},"https://www.redhat.com/archives/fedora-package-announce/2009-August/msg00198.html",[593,587],[598,666],{"url":543,"sources":684,"tags":685},[593,587],[613,614,647],{"url":687,"sources":688,"tags":689},"http://osvdb.org/56717",[593,587],[595,690],"X Refsource OSVDB",{"url":692,"sources":693,"tags":694},"http://www.securitytracker.com/id?1022603",[593,587],[595,695],"X Refsource SECTRACK",{"url":697,"sources":698,"tags":699},"http://es.geocities.com/jplopezy/firefoxspoofing.html",[593,587],[700],"X Refsource MISC",{"url":702,"sources":703,"tags":704},"http://www.debian.org/security/2009/dsa-1873",[593,587],[598,705],"X Refsource DEBIAN",{"url":707,"sources":708,"tags":709},"http://www.redhat.com/support/errata/RHSA-2009-1431.html",[593,587],[598,619],{"url":711,"sources":712,"tags":713},"http://secunia.com/advisories/36435",[593,587],[603,604,598],[],{"date":716,"score":584,"percentile":717},"2026-06-04",0.94263,[719,722,725,728,731,734,736,738,741,744,747,750,753,755,758,761,764,767,770,772,775,778,781,784,787,790,792,794,797,800,802,804,806,808,810,812,815,818,821,824,827,829,832,835,838,841,843,846,848,850,852,855,858,861,864,867,870,872,874,877,880,883,886,889,892,894,897,900,903,905,907,909,911,914,917,920,923,925,927,930,933,936,939,942,945,947,949,952,954,956],{"date":720,"score":584,"percentile":721},"2025-11-04",0.93827,{"date":723,"score":584,"percentile":724},"2025-11-05",0.93828,{"date":726,"score":584,"percentile":727},"2025-11-06",0.9383,{"date":729,"score":584,"percentile":730},"2025-11-07",0.93832,{"date":732,"score":584,"percentile":733},"2025-11-08",0.93833,{"date":735,"score":584,"percentile":730},"2025-11-09",{"date":737,"score":584,"percentile":733},"2025-11-10",{"date":739,"score":584,"percentile":740},"2025-11-11",0.93835,{"date":742,"score":584,"percentile":743},"2025-11-12",0.9384,{"date":745,"score":584,"percentile":746},"2025-11-13",0.93841,{"date":748,"score":584,"percentile":749},"2025-11-14",0.93845,{"date":751,"score":584,"percentile":752},"2025-11-15",0.93842,{"date":754,"score":584,"percentile":749},"2025-11-16",{"date":756,"score":584,"percentile":757},"2025-11-17",0.93844,{"date":759,"score":584,"percentile":760},"2025-11-18",0.9349,{"date":762,"score":584,"percentile":763},"2025-11-19",0.93493,{"date":765,"score":584,"percentile":766},"2025-11-20",0.93499,{"date":768,"score":584,"percentile":769},"2025-11-21",0.93852,{"date":771,"score":584,"percentile":769},"2025-11-22",{"date":773,"score":584,"percentile":774},"2025-11-23",0.93857,{"date":776,"score":584,"percentile":777},"2025-11-24",0.93858,{"date":779,"score":584,"percentile":780},"2025-11-25",0.9386,{"date":782,"score":584,"percentile":783},"2025-11-26",0.93859,{"date":785,"score":584,"percentile":786},"2025-11-27",0.93861,{"date":788,"score":584,"percentile":789},"2025-11-28",0.93854,{"date":791,"score":584,"percentile":783},"2025-11-29",{"date":793,"score":584,"percentile":777},"2025-11-30",{"date":795,"score":584,"percentile":796},"2025-12-01",0.93905,{"date":798,"score":584,"percentile":799},"2025-12-02",0.93906,{"date":801,"score":584,"percentile":796},"2025-12-03",{"date":803,"score":584,"percentile":774},"2025-12-04",{"date":805,"score":584,"percentile":786},"2025-12-05",{"date":807,"score":584,"percentile":780},"2025-12-06",{"date":809,"score":584,"percentile":783},"2025-12-07",{"date":811,"score":584,"percentile":780},"2025-12-08",{"date":813,"score":584,"percentile":814},"2025-12-09",0.93865,{"date":816,"score":584,"percentile":817},"2025-12-10",0.93872,{"date":819,"score":584,"percentile":820},"2025-12-11",0.93874,{"date":822,"score":584,"percentile":823},"2025-12-12",0.93876,{"date":825,"score":584,"percentile":826},"2025-12-13",0.93875,{"date":828,"score":584,"percentile":820},"2025-12-14",{"date":830,"score":584,"percentile":831},"2025-12-15",0.93877,{"date":833,"score":584,"percentile":834},"2025-12-16",0.93881,{"date":836,"score":584,"percentile":837},"2025-12-17",0.93885,{"date":839,"score":584,"percentile":840},"2025-12-18",0.93889,{"date":842,"score":584,"percentile":840},"2025-12-19",{"date":844,"score":584,"percentile":845},"2025-12-20",0.93888,{"date":847,"score":584,"percentile":845},"2025-12-21",{"date":849,"score":584,"percentile":845},"2025-12-22",{"date":851,"score":584,"percentile":845},"2025-12-23",{"date":853,"score":584,"percentile":854},"2025-12-24",0.93891,{"date":856,"score":584,"percentile":857},"2025-12-25",0.939,{"date":859,"score":584,"percentile":860},"2025-12-26",0.93898,{"date":862,"score":584,"percentile":863},"2025-12-27",0.93943,{"date":865,"score":584,"percentile":866},"2025-12-28",0.93895,{"date":868,"score":584,"percentile":869},"2025-12-29",0.93894,{"date":871,"score":584,"percentile":866},"2025-12-30",{"date":873,"score":584,"percentile":857},"2025-12-31",{"date":875,"score":584,"percentile":876},"2026-01-01",0.93945,{"date":878,"score":584,"percentile":879},"2026-01-02",0.9394,{"date":881,"score":584,"percentile":882},"2026-01-03",0.93937,{"date":884,"score":584,"percentile":885},"2026-01-04",0.93896,{"date":887,"score":584,"percentile":888},"2026-01-05",0.93892,{"date":890,"score":584,"percentile":891},"2026-01-06",0.93893,{"date":893,"score":584,"percentile":891},"2026-01-07",{"date":895,"score":584,"percentile":896},"2026-01-08",0.93897,{"date":898,"score":584,"percentile":899},"2026-01-09",0.93899,{"date":901,"score":584,"percentile":902},"2026-01-10",0.93901,{"date":904,"score":584,"percentile":899},"2026-01-11",{"date":906,"score":584,"percentile":885},"2026-01-12",{"date":908,"score":584,"percentile":896},"2026-01-13",{"date":910,"score":584,"percentile":799},"2026-01-14",{"date":912,"score":584,"percentile":913},"2026-01-15",0.93908,{"date":915,"score":584,"percentile":916},"2026-01-16",0.93912,{"date":918,"score":584,"percentile":919},"2026-01-17",0.93917,{"date":921,"score":584,"percentile":922},"2026-01-18",0.93913,{"date":924,"score":584,"percentile":916},"2026-01-19",{"date":926,"score":584,"percentile":922},"2026-01-20",{"date":928,"score":584,"percentile":929},"2026-01-21",0.93916,{"date":931,"score":584,"percentile":932},"2026-01-22",0.9392,{"date":934,"score":584,"percentile":935},"2026-01-23",0.93926,{"date":937,"score":584,"percentile":938},"2026-01-24",0.9393,{"date":940,"score":584,"percentile":941},"2026-01-25",0.93931,{"date":943,"score":584,"percentile":944},"2026-01-26",0.93933,{"date":946,"score":584,"percentile":944},"2026-01-27",{"date":948,"score":584,"percentile":882},"2026-01-28",{"date":950,"score":584,"percentile":951},"2026-01-29",0.93938,{"date":953,"score":584,"percentile":951},"2026-01-30",{"date":955,"score":584,"percentile":879},"2026-01-31",{"date":957,"score":584,"percentile":958},"2026-02-01",0.93977,[960],{"source":587,"cvss_v2_0":961,"cvss_v3_0":9,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":585,"baseSeverity":9,"vectorString":588,"impactScore":962,"exploitabilityScore":963},4.9,8.6,[965],{"ecosystem":9,"name":966,"vendor":967,"product":966,"cpe_part":968,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":969},"firefox","mozilla","a",[970,975,977,979,981,983,985,987,989,991,993,995,997,999,1001,1003,1005,1007,1009,1011,1013,1015,1017,1019,1021,1023,1025,1027,1029,1031,1033,1035,1037,1039,1041,1043,1045,1047,1049,1051,1053,1055,1057,1059,1061,1063,1065,1067,1069,1071,1073,1075,1077,1079,1081,1083,1085,1087,1089,1091,1093,1095,1097,1099,1101,1103,1105,1107,1109,1111,1113,1115,1117,1119,1121,1123,1125,1127,1129,1131,1133,1135,1137,1139,1141,1143,1145,1147,1149,1151,1153,1155,1157,1159,1161,1163,1165,1167,1169,1171,1173,1175,1177,1179,1181,1183,1185,1187],{"version":971,"is_range":552,"range_type":972,"version_start":9,"version_start_type":9,"version_end":973,"version_end_type":974,"fixed_in":9},"lte3.5.1","cpe","3.5.1","including",{"version":976,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.1",{"version":978,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.2",{"version":980,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.3",{"version":982,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.4",{"version":984,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.5",{"version":986,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.6",{"version":988,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.6.1",{"version":990,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.7",{"version":992,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.7.1",{"version":994,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.8",{"version":996,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.9",{"version":998,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.9:rc",{"version":1000,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.9.1",{"version":1002,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.9.2",{"version":1004,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.9.3",{"version":1006,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.9_rc",{"version":1008,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.10",{"version":1010,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"0.10.1",{"version":1012,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0",{"version":1014,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0:preview_release",{"version":1016,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0.1",{"version":1018,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0.2",{"version":1020,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0.3",{"version":1022,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0.4",{"version":1024,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0.5",{"version":1026,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0.6",{"version":1028,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0.7",{"version":1030,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0.8",{"version":1032,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.4.1",{"version":1034,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5",{"version":1036,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5:beta1",{"version":1038,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5:beta2",{"version":1040,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.1",{"version":1042,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.2",{"version":1044,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.3",{"version":1046,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.4",{"version":1048,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.5",{"version":1050,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.6",{"version":1052,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.7",{"version":1054,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.8",{"version":1056,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.9",{"version":1058,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.10",{"version":1060,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.11",{"version":1062,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.0.12",{"version":1064,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.1",{"version":1066,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.2",{"version":1068,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.3",{"version":1070,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.4",{"version":1072,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.5",{"version":1074,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.6",{"version":1076,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.7",{"version":1078,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.5.8",{"version":1080,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.8",{"version":1082,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0",{"version":1084,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0:beta_1",{"version":1086,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0:beta1",{"version":1088,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0:rc2",{"version":1090,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0:rc3",{"version":1092,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.1",{"version":1094,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.2",{"version":1096,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.3",{"version":1098,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.4",{"version":1100,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.5",{"version":1102,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.6",{"version":1104,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.7",{"version":1106,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.8",{"version":1108,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.9",{"version":1110,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.10",{"version":1112,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.11",{"version":1114,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.12",{"version":1116,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.13",{"version":1118,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.14",{"version":1120,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.15",{"version":1122,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.16",{"version":1124,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.17",{"version":1126,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.18",{"version":1128,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.19",{"version":1130,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.20",{"version":1132,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0.0.21",{"version":1134,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0_.1",{"version":1136,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0_.4",{"version":1138,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0_.5",{"version":1140,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0_.6",{"version":1142,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0_.7",{"version":1144,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0_.9",{"version":1146,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0_.10",{"version":1148,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0_8",{"version":1150,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0",{"version":1152,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0:beta2",{"version":1154,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0:beta5",{"version":1156,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.1",{"version":1158,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.2",{"version":1160,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.3",{"version":1162,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.4",{"version":1164,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.5",{"version":1166,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.6",{"version":1168,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.7",{"version":1170,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.8",{"version":1172,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.9",{"version":1174,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.10",{"version":1176,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.11",{"version":1178,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.12",{"version":1180,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.1:beta1",{"version":1182,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.2:beta1",{"version":1184,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.2:beta2",{"version":1186,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.2:beta3",{"version":1188,"is_range":539,"range_type":972,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.5"]